ICSA-25-219-01
·
Published 2025-08-07
·
View on CISA ICS-CERT ↗
Delta Electronics DIAView
CVSS 9.8
CRITICAL
Risk Summary
Successful exploitation of this vulnerability may allow a remote attacker to read or write files on the affected device.
CVEs (1)
Remediations
- Delta Electronics recommends users update to DIAView v4.3.0 or later.
- For more information, see Delta Electronics advisory Delta-PCSA-2025-00010.
- Delta Electronics offers users the following general recommendations:
- Do not click on untrusted Internet links or open unsolicited attachments in emails.
- Avoid exposing control systems and equipment to the Internet.
- Place control system networks and remote devices behind firewalls, and isolate them from the business network.
- When remote access is required, use a secure access method, such as a virtual private network (VPN).
- If you have any product-related support concerns, contact Delta via the portal page for any information or materials you may require.
Affected Vendors
Delta Electronics
Affected Products (1)
Delta Electronics
·
DIAView
4.2.0.0
Affected Sectors
Chemical, Commercial Facilities, Critical Manufacturing, Energy, Transportation Systems, Water and Wastewater Systems
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more